PT-2026-32607 · Siemens · Sinec Nms

Published

2026-04-14

·

Updated

2026-04-23

·

CVE-2026-24032

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SINEC NMS versions prior to 4.0 SP3 with UMC
Description An authentication weakness exists in the UMC component due to insufficient validation of user identity. This flaw allows an unauthenticated remote attacker to bypass authentication and gain unauthorized access to the application.
Recommendations Update to version 4.0 SP3 with UMC.

Fix

Improper Verification of Cryptographic Signature

Weakness Enumeration

Related Identifiers

BDU:2026-05801
CVE-2026-24032
ZDI-26-298

Affected Products

Sinec Nms